<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Log Exporter to Syslog Server in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Log-Exporter-to-Syslog-Server/m-p/65550#M13385</link>
    <description>When the connection is started, it will add a line in the logs for the Syn packet it sees. As long as the connection is running, it will not be restarted until there is a reason to start a new session, ie a change in the configuration of the log export, which requires a restart of the processes.</description>
    <pubDate>Tue, 22 Oct 2019 09:46:36 GMT</pubDate>
    <dc:creator>Maarten_Sjouw</dc:creator>
    <dc:date>2019-10-22T09:46:36Z</dc:date>
    <item>
      <title>Log Exporter to Syslog Server</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Log-Exporter-to-Syslog-Server/m-p/65544#M13382</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;We're setting up 3rd party network monitoring for our network. The 3rd party has requested that the Check Point logs are sent to their monitoring server to port 10527.&amp;nbsp; That's fine, we've configured Log Exporter to do that.&lt;/P&gt;&lt;P&gt;I've done a tcpdump on the CP management server and can see packets being sent from it, using ports 40617 and 53660, to the monitoring server's port of 10527. I've looked on the CP logs and the last time packets were accepted was last week (not long after I setup the firewall rule). Nothing has hit since then.&lt;/P&gt;&lt;P&gt;Have I missed anything out? As far as I can see I have done everything needed. Any suggestions would be appreciated!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 22 Oct 2019 09:05:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Log-Exporter-to-Syslog-Server/m-p/65544#M13382</guid>
      <dc:creator>Wyman</dc:creator>
      <dc:date>2019-10-22T09:05:11Z</dc:date>
    </item>
    <item>
      <title>Re: Log Exporter to Syslog Server</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Log-Exporter-to-Syslog-Server/m-p/65550#M13385</link>
      <description>When the connection is started, it will add a line in the logs for the Syn packet it sees. As long as the connection is running, it will not be restarted until there is a reason to start a new session, ie a change in the configuration of the log export, which requires a restart of the processes.</description>
      <pubDate>Tue, 22 Oct 2019 09:46:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Log-Exporter-to-Syslog-Server/m-p/65550#M13385</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2019-10-22T09:46:36Z</dc:date>
    </item>
    <item>
      <title>Re: Log Exporter to Syslog Server</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Log-Exporter-to-Syslog-Server/m-p/65587#M13397</link>
      <description>&lt;P&gt;Hi Maarten,&lt;/P&gt;&lt;P&gt;Thanks for clarifying.&lt;/P&gt;</description>
      <pubDate>Tue, 22 Oct 2019 16:28:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Log-Exporter-to-Syslog-Server/m-p/65587#M13397</guid>
      <dc:creator>Wyman</dc:creator>
      <dc:date>2019-10-22T16:28:05Z</dc:date>
    </item>
  </channel>
</rss>

